We have a compliance/vulnerability finding raised against our Fluent Bit deployment regarding containers running as the root user.
We would like to check with the Fluent Bit team on the feasibility and supportability of running Fluent Bit as a non-root user in our environment.
Could you please help clarify the following:
- Does Fluent Bit officially support running as a non-root user?
- Are there any known limitations or feature impacts when running non-root?
- Are there recommended securityContext settings (runAsUser, fsGroup, capabilities, etc.)?
- Are any specific directories/files required to remain writable by root?
- Have there been any validated deployments or best practices for OpenShift/Kubernetes environments using non-root execution?
We have a compliance/vulnerability finding raised against our Fluent Bit deployment regarding containers running as the root user.
We would like to check with the Fluent Bit team on the feasibility and supportability of running Fluent Bit as a non-root user in our environment.
Could you please help clarify the following: